Threat Group Cards: A Threat Actor Encyclopedia Archived: 2026-04-06 02:52:27 UTC Home > List all groups > List all tools > List all groups using tool Mydoom Tool: Mydoom Names Mydoom Novarg Mimail Category Malware Type Worm, DDoS Description (Palo Alto) MyDoom is an infamous computer worm first noted in early 2004. This malware has been featured in top ten lists of the most destructive computer viruses, causing an estimated $38 billion in damage. Although now well past its heyday, MyDoom continues to be a presence in the cyber threat landscape. While not as prominent as other malware families, MyDoom has remained relatively consistent during the past few years, averaging approximately 1.1 percent of all emails we see with malware attachments. We continue to record tens of thousands of MyDoom samples every month. The vast majority of MyDoom emails come from IP addresses registered in China, with the United States running a distant second. These emails are sent to recipients across the world, mostly targeting high tech, wholesale, retail, healthcare, education, and manufacturing industries. Information Malpedia AlienVault OTX Last change to this tool card: 24 April 2021 Download this tool card in JSON format All groups using tool Mydoom Changed Name Country Observed https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=fa55f904-9712-425b-a988-e81a59cfddaf Page 1 of 2 APT groups   Lazarus Group, Hidden Cobra, Labyrinth Chollima 2007-May 2025 1 group listed (1 APT, 0 other, 0 unknown) Source: https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=fa55f904-9712-425b-a988-e81a59cfddaf https://apt.etda.or.th/cgi-bin/listgroups.cgi?u=fa55f904-9712-425b-a988-e81a59cfddaf Page 2 of 2